You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T08:34:20Z INFO [vulndb] Need to update DB
2024-11-26T08:34:20Z INFO [vulndb] Downloading vulnerability DB...
2024-11-26T08:34:20Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T08:34:22Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T08:34:22Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:34:22Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:34:22Z INFO [misconfig] Need to update the built-in checks
2024-11-26T08:34:22Z INFO [misconfig] Downloading the built-in checks...
2024-11-26T08:34:23Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 673.651µs, allowed: 44000/minute"
2024-11-26T08:34:23Z INFO [secret] Secret scanning is enabled
2024-11-26T08:34:23Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:34:23Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T08:34:24Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.administator" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.data_engineer" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.developer" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.fleet_manager" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-access" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-management" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.migration" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.mwaa_user" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.powerbi_user" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.quicksight_admin" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.read_only" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.reporting-operations" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.sandbox" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.security_audit" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.view_only" value="cty.NilVal"
2024-11-26T08:34:24Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="data.aws_identitystore_group.member" value="cty.NilVal"
2024-11-26T08:34:24Z INFO Number of language-specific files num=0
2024-11-26T08:34:24Z INFO Detected config files num=2
trivy_exitcode=0
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
terraform/environments/bootstrap/single-sign-on
*****************************
Running tflint in terraform/environments/bootstrap/single-sign-on
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
*****************************
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T08:34:20Z INFO [vulndb] Need to update DB
2024-11-26T08:34:20Z INFO [vulndb] Downloading vulnerability DB...2024-11-26T08:34:20Z INFO [vulndb] Downloading artifact...repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T08:34:22Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T08:34:22Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:34:22Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:34:22Z INFO [misconfig] Need to update the built-in checks
2024-11-26T08:34:22Z INFO [misconfig] Downloading the built-in checks...2024-11-26T08:34:23Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 673.651µs, allowed: 44000/minute"2024-11-26T08:34:23Z INFO [secret] Secret scanning is enabled
2024-11-26T08:34:23Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:34:23Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T08:34:24Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.administator"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.data_engineer"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.developer"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.fleet_manager"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-access"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-management"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.migration"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.mwaa_user"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.powerbi_user"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.quicksight_admin"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.read_only"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.reporting-operations"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.sandbox"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.security_audit"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.view_only"value="cty.NilVal"2024-11-26T08:34:24Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="data.aws_identitystore_group.member"value="cty.NilVal"2024-11-26T08:34:24Z INFO Number of language-specific files num=02024-11-26T08:34:24Z INFO Detected config files num=2trivy_exitcode=0
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T08:55:24Z INFO [vulndb] Need to update DB
2024-11-26T08:55:24Z INFO [vulndb] Downloading vulnerability DB...
2024-11-26T08:55:24Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T08:55:27Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T08:55:27Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:55:27Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:55:27Z INFO [misconfig] Need to update the built-in checks
2024-11-26T08:55:27Z INFO [misconfig] Downloading the built-in checks...
160.25 KiB / 160.25 KiB [------------------------------------------------------] 100.00% ? p/s 100ms2024-11-26T08:55:27Z INFO [secret] Secret scanning is enabled
2024-11-26T08:55:27Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:55:27Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T08:55:28Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.administator" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.data_engineer" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.developer" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.fleet_manager" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-access" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-management" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.migration" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.mwaa_user" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.powerbi_user" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.quicksight_admin" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.read_only" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.reporting-operations" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.sandbox" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.security_audit" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.view_only" value="cty.NilVal"
2024-11-26T08:55:28Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="data.aws_identitystore_group.member" value="cty.NilVal"
2024-11-26T08:55:28Z INFO Number of language-specific files num=0
2024-11-26T08:55:28Z INFO Detected config files num=2
trivy_exitcode=0
Running Trivy in terraform/environments/sprinkler
2024-11-26T08:55:28Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:55:28Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:55:28Z INFO [secret] Secret scanning is enabled
2024-11-26T08:55:28Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:55:28Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T08:55:29Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T08:55:29Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2024-11-26T08:55:30Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.ram-ec2-retagging[0].data.aws_subnet.host" value="cty.NilVal"
2024-11-26T08:55:30Z INFO Number of language-specific files num=0
2024-11-26T08:55:30Z INFO Detected config files num=1
trivy_exitcode=0
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
*****************************
Running tflint in terraform/environments/bootstrap/single-sign-on
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0*****************************
Running tflint in terraform/environments/sprinkler
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
*****************************
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T08:55:24Z INFO [vulndb] Need to update DB
2024-11-26T08:55:24Z INFO [vulndb] Downloading vulnerability DB...2024-11-26T08:55:24Z INFO [vulndb] Downloading artifact...repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T08:55:27Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T08:55:27Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:55:27Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:55:27Z INFO [misconfig] Need to update the built-in checks
2024-11-26T08:55:27Z INFO [misconfig] Downloading the built-in checks...160.25 KiB /160.25 KiB [------------------------------------------------------] 100.00%? p/s 100ms2024-11-26T08:55:27Z INFO [secret] Secret scanning is enabled
2024-11-26T08:55:27Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:55:27Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T08:55:28Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.administator"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.data_engineer"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.developer"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.fleet_manager"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-access"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-management"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.migration"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.mwaa_user"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.powerbi_user"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.quicksight_admin"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.read_only"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.reporting-operations"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.sandbox"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.security_audit"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.view_only"value="cty.NilVal"2024-11-26T08:55:28Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="data.aws_identitystore_group.member"value="cty.NilVal"2024-11-26T08:55:28Z INFO Number of language-specific files num=02024-11-26T08:55:28Z INFO Detected config files num=2trivy_exitcode=0*****************************
Running Trivy in terraform/environments/sprinkler
2024-11-26T08:55:28Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T08:55:28Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T08:55:28Z INFO [secret] Secret scanning is enabled
2024-11-26T08:55:28Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T08:55:28Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T08:55:29Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T08:55:29Z WARN [terraformparser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.module="root"variables="networking"2024-11-26T08:55:30Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="module.ram-ec2-retagging[0].data.aws_subnet.host"value="cty.NilVal"2024-11-26T08:55:30Z INFO Number of language-specific files num=02024-11-26T08:55:30Z INFO Detected config files num=1trivy_exitcode=0
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T11:56:00Z INFO [vulndb] Need to update DB
2024-11-26T11:56:00Z INFO [vulndb] Downloading vulnerability DB...
2024-11-26T11:56:00Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T11:56:03Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T11:56:03Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T11:56:03Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T11:56:03Z INFO [misconfig] Need to update the built-in checks
2024-11-26T11:56:03Z INFO [misconfig] Downloading the built-in checks...
2024-11-26T11:56:03Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 121.355µs, allowed: 44000/minute"
2024-11-26T11:56:03Z INFO [secret] Secret scanning is enabled
2024-11-26T11:56:03Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T11:56:03Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T11:56:04Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.administator" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.data_engineer" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.developer" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.fleet_manager" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-access" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-management" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.migration" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.mwaa_user" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.powerbi_user" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.quicksight_admin" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.read_only" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.reporting-operations" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.sandbox" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.security_audit" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.view_only" value="cty.NilVal"
2024-11-26T11:56:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="data.aws_identitystore_group.member" value="cty.NilVal"
2024-11-26T11:56:04Z INFO Number of language-specific files num=0
2024-11-26T11:56:04Z INFO Detected config files num=2
trivy_exitcode=0
Running Trivy in terraform/environments/sprinkler
2024-11-26T11:56:04Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T11:56:04Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T11:56:04Z INFO [misconfig] Need to update the built-in checks
2024-11-26T11:56:04Z INFO [misconfig] Downloading the built-in checks...
2024-11-26T11:56:04Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-checks/manifests/1: TOOMANYREQUESTS: retry-after: 914.961µs, allowed: 44000/minute\n\n"
2024-11-26T11:56:04Z INFO [secret] Secret scanning is enabled
2024-11-26T11:56:04Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T11:56:04Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T11:56:05Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T11:56:05Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2024-11-26T11:56:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.ram-ec2-retagging[0].data.aws_subnet.host" value="cty.NilVal"
2024-11-26T11:56:06Z INFO Number of language-specific files num=0
2024-11-26T11:56:06Z INFO Detected config files num=1
trivy_exitcode=0
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
*****************************
Running tflint in terraform/environments/bootstrap/single-sign-on
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0*****************************
Running tflint in terraform/environments/sprinkler
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
terraform/environments/sprinkler
*****************************
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T11:56:00Z INFO [vulndb] Need to update DB
2024-11-26T11:56:00Z INFO [vulndb] Downloading vulnerability DB...2024-11-26T11:56:00Z INFO [vulndb] Downloading artifact...repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T11:56:03Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T11:56:03Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T11:56:03Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T11:56:03Z INFO [misconfig] Need to update the built-in checks
2024-11-26T11:56:03Z INFO [misconfig] Downloading the built-in checks...2024-11-26T11:56:03Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 121.355µs, allowed: 44000/minute"2024-11-26T11:56:03Z INFO [secret] Secret scanning is enabled
2024-11-26T11:56:03Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T11:56:03Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T11:56:04Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.administator"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.data_engineer"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.developer"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.fleet_manager"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-access"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-management"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.migration"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.mwaa_user"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.powerbi_user"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.quicksight_admin"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.read_only"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.reporting-operations"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.sandbox"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.security_audit"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.view_only"value="cty.NilVal"2024-11-26T11:56:04Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="data.aws_identitystore_group.member"value="cty.NilVal"2024-11-26T11:56:04Z INFO Number of language-specific files num=02024-11-26T11:56:04Z INFO Detected config files num=2trivy_exitcode=0*****************************
Running Trivy in terraform/environments/sprinkler
2024-11-26T11:56:04Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T11:56:04Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T11:56:04Z INFO [misconfig] Need to update the built-in checks
2024-11-26T11:56:04Z INFO [misconfig] Downloading the built-in checks...2024-11-26T11:56:04Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-checks/manifests/1: TOOMANYREQUESTS: retry-after: 914.961µs, allowed: 44000/minute\n\n"2024-11-26T11:56:04Z INFO [secret] Secret scanning is enabled
2024-11-26T11:56:04Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T11:56:04Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T11:56:05Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T11:56:05Z WARN [terraformparser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.module="root"variables="networking"2024-11-26T11:56:06Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="module.ram-ec2-retagging[0].data.aws_subnet.host"value="cty.NilVal"2024-11-26T11:56:06Z INFO Number of language-specific files num=02024-11-26T11:56:06Z INFO Detected config files num=1trivy_exitcode=0
</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>
```hcl
*****************************
Checkov will check the following folders:
CTFLint Scan Success
Show Output
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T13:47:56Z INFO [vulndb] Need to update DB
2024-11-26T13:47:56Z INFO [vulndb] Downloading vulnerability DB...
2024-11-26T13:47:56Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T13:47:58Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2024-11-26T13:47:58Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T13:47:58Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T13:47:58Z INFO [misconfig] Need to update the built-in checks
2024-11-26T13:47:58Z INFO [misconfig] Downloading the built-in checks...
2024-11-26T13:47:58Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 369.906µs, allowed: 44000/minute"
2024-11-26T13:47:58Z INFO [secret] Secret scanning is enabled
2024-11-26T13:47:58Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T13:47:58Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-26T13:47:59Z INFO [terraform scanner] Scanning root module file_path="."
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.administator" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.data_engineer" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.developer" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.fleet_manager" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-access" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.instance-management" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.migration" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.mwaa_user" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.powerbi_user" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.quicksight_admin" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.read_only" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.reporting-operations" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.sandbox" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.security_audit" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="aws_ssoadmin_account_assignment.view_only" value="cty.NilVal"
2024-11-26T13:47:59Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="data.aws_identitystore_group.member" value="cty.NilVal"
2024-11-26T13:47:59Z INFO Number of language-specific files num=0
2024-11-26T13:47:59Z INFO Detected config files num=2
trivy_exitcode=0
</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>
```hcl
*****************************
Checkov will check the following folders:
terraform/environments/bootstrap/single-sign-on
*****************************
Running Checkov in terraform/environments/bootstrap/single-sign-on
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
terraform scan results:
Passed checks: 122, Failed checks: 0, Skipped checks: 55
checkov_exitcode=0
CTFLint Scan Success
Show Output
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
terraform/environments/bootstrap/single-sign-on
*****************************
Running tflint in terraform/environments/bootstrap/single-sign-on
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
terraform/environments/bootstrap/single-sign-on
*****************************
Running Trivy in terraform/environments/bootstrap/single-sign-on
2024-11-26T13:47:56Z INFO [vulndb] Need to update DB
2024-11-26T13:47:56Z INFO [vulndb] Downloading vulnerability DB...2024-11-26T13:47:56Z INFO [vulndb] Downloading artifact...repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T13:47:58Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"2024-11-26T13:47:58Z INFO [vuln] Vulnerability scanning is enabled
2024-11-26T13:47:58Z INFO [misconfig] Misconfiguration scanning is enabled
2024-11-26T13:47:58Z INFO [misconfig] Need to update the built-in checks
2024-11-26T13:47:58Z INFO [misconfig] Downloading the built-in checks...2024-11-26T13:47:58Z ERROR [misconfig] Falling back to embedded checks err="failed to download built-in policies: download error: oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-checks/blobs/sha256:16442a4593a0395452e678ef699a880eec94d9211dfc887d52574beb78b95030: TOOMANYREQUESTS: retry-after: 369.906µs, allowed: 44000/minute"2024-11-26T13:47:58Z INFO [secret] Secret scanning is enabled
2024-11-26T13:47:58Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-26T13:47:58Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection2024-11-26T13:47:59Z INFO [terraformscanner] Scanning root module file_path="."2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.administator"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.data_engineer"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.developer"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.fleet_manager"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-access"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.instance-management"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.migration"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.mwaa_user"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.powerbi_user"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.quicksight_admin"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.read_only"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.reporting-operations"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.sandbox"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.security_audit"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="aws_ssoadmin_account_assignment.view_only"value="cty.NilVal"2024-11-26T13:47:59Z ERROR [terraformevaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.block="data.aws_identitystore_group.member"value="cty.NilVal"2024-11-26T13:47:59Z INFO Number of language-specific files num=02024-11-26T13:47:59Z INFO Detected config files num=2trivy_exitcode=0
</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>
```hcl
*****************************
Checkov will check the following folders:
CTFLint Scan Success
Show Output
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>
```hcl
*****************************
Checkov will check the following folders:
CTFLint Scan Success
Show Output
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>
```hcl
*****************************
Checkov will check the following folders:
CTFLint Scan Success
Show Output
*****************************
Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version:0.9.1)
tflint will check the following folders:
Trivy Scan Success
Show Output
*****************************
Trivy will check the following folders:
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
A reference to the issue / Description of it
{Please write here}
How does this PR fix the problem?
{Please write here}
How has this been tested?
Please describe the tests that you ran and provide instructions to reproduce.
{Please write here}
Deployment Plan / Instructions
Will this deployment impact the platform and / or services on it?
{Please write here}
Checklist (check
x
in[ ]
of list items)Additional comments (if any)
{Please write here}